Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-44291


Dell DM5500 5.14.0.0 contains an OS command injection vulnerability in the appliance. A remote attacker with high privileges could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the underlying OS, with the privileges of the vulnerable application. Exploitation may lead to a system take over by an attacker.


Published

2023-12-04T09:15:35.623

Last Modified

2024-11-21T08:25:36.057

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.2 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-78
  • Type: Primary
    CWE-78

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System dell powerprotect_data_manager_dm5500_firmware ≤ 5.14.0.0 Yes
Hardware dell powerprotect_data_manager_dm5500 - No

References